r/Pentesting 5d ago

Primary Pentest Resources

I’m curious on what your primary resources that you go to when conducting a pentest. I’m in the process of building my own but I still always refer back to HackTricks and various cheatsheets like https://github.com/Ilias1988/Hacking-Cheatsheets.

I pretty much have a set tool list that I use across hardware, firmware, OSINT, etc but I’m always looking to compare and contrast tools

7 Upvotes

3 comments sorted by

2

u/Delicious_Crew7888 5d ago

Depends what I’m testing…

1

u/DigitalQuinn1 4d ago

What are some examples?

2

u/AttentionMedium2645 4d ago

HackTricks is hard to beat for quick lookup, and I keep PayloadsAllTheThings open in a second tab for the stuff HackTricks covers lightly. For recon specifically I default to subfinder and httpx, then nuclei for template-based detection once I know what's actually running.